QUESTION 67How should the Cisco Secure ACS v4.2 and the Cisco WLC v7.0 be configured to support wireless client authentication?

A. The WLC configured for RADIUS and the Cisco Secure ACS configured for RADIUS (Cisco Airespace)B. The WLC configured for RADIUS and the Cisco Secure ACS configured for RADIUS (IETF)C. The WLC configured for TACACS+ and the Cisco Secure ACS configured for TACACS+ (Cisco Airespace)D. The WLC configured for TACACS+ and the Cisco Secure ACS configured for TACACS+ (Cisco IOS)

Answer: AExplanation:

QUESTION 68Clients are failing EAP authentication. A debug shows that an EAPOL start is sent and the clients are then de-authenticated. Which two issues can cause this problem? (Choose two.)

A. The WLC certificate has changed.B. The WLAN is not configured for the correct EAP supplicant type.C. The shared secret of the WLC and RADIUS server do not match.D. The WLC has not been added to the RADIUS server as a client.E. The clients are configured for machine authentication, but the RADIUS server is configured for user authentication.

Answer: CDExplanation:

QUESTION 69What are two of the benefits that the Cisco AnyConnect v3.0 provides to the administrator for client WLAN security configuration? (Choose two.)

A. using AirMagnet Wi-Fi Analyzer to search for hidden SSIDsB. calling the IT helpdesk and asking for network informationC. spoofing the MAC address of an employee deviceD. entering a business and posing as IT support staff

QUESTION 75802.1X AP supplicant credentials have been enabled and configured on a Cisco WLC v7.0 in both the respective Wireless>AP>Global Configuration location and AP>Credentials tab locations. What describes the 802.1X AP authentication process when connected via Ethernet to a switch?

A. Only WLC AP global credentials are used.B. Only AP credentials are used.C. WLC global AP credentials are used first; upon failure, the AP credentials are used.D. AP credentials are used first; upon failure, the WLC global credentials are used.

Answer: B

QUESTION 76An engineer has configured passive fallback mode for RADIUS with default timer settings.What will occur when the primary RADIUS fails then recovers?

A. RADIUS requests will be sent to the secondary RADIUS server until the secondary fails to respond.B. The controller will immediately revert back after it receives a RADIUS probe from the primary server.C. After the inactive time expires the controller will send RADIUS to the primary.D. Once RADIUS probe messages determine the primary controller is active the controller will revert back to the primary RADIUS.

Answer: C

QUESTION 77What two actions must be taken by an engineer configuring wireless Identity-Based Networking for a WLAN to enable VLAN tagging? (Choose two.)